CVE-2006-6730
- EPSS 0.05%
- Published 26.12.2006 23:28:00
- Last modified 09.04.2025 00:30:58
OpenBSD and NetBSD permit usermode code to kill the display server and write to the X.Org /dev/xf86 device, which allows local users with root privileges to reduce securelevel by replacing the System Management Mode (SMM) handler via a write to an SM...
- EPSS 33.35%
- Published 20.12.2006 02:28:00
- Last modified 09.04.2025 00:30:58
Buffer overflow in the glob implementation (glob.c) in libc in NetBSD-current before 20050914, NetBSD 2.* and 3.* before 20061203, and Apple Mac OS X before 2007-004, as used by the FTP daemon and tnftpd, allows remote authenticated users to execute ...
CVE-2006-6653
- EPSS 0.06%
- Published 20.12.2006 02:28:00
- Last modified 09.04.2025 00:30:58
The accept function in NetBSD-current before 20061023, NetBSD 3.0 and 3.0.1 before 20061024, and NetBSD 2.x before 20061029 allows local users to cause a denial of service (socket consumption) via an invalid (1) name or (2) namelen parameter, which m...
CVE-2006-6654
- EPSS 0.48%
- Published 20.12.2006 02:28:00
- Last modified 09.04.2025 00:30:58
The sendmsg function in NetBSD-current before 20061023, NetBSD 3.0 and 3.0.1 before 20061024, and NetBSD 2.x before 20061029, when run on a 64-bit architecture, allows attackers to cause a denial of service (kernel panic) via an invalid msg_controlle...
CVE-2006-6655
- EPSS 0.06%
- Published 20.12.2006 02:28:00
- Last modified 09.04.2025 00:30:58
The procfs implementation in NetBSD-current before 20061023, NetBSD 3.0 and 3.0.1 before 20061024, and NetBSD 2.x before 20061029 allows local users to cause a denial of service (kernel panic) by attempting to access /emul/linux/proc/0/stat on a proc...
CVE-2006-6656
- EPSS 0.06%
- Published 20.12.2006 02:28:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in ptrace in NetBSD-current before 20061027, NetBSD 3.0 and 3.0.1 before 20061027, and NetBSD 2.x before 20061119 allows local users to read kernel memory and obtain sensitive information via certain manipulations of a PT_LW...
CVE-2006-6657
- EPSS 0.06%
- Published 20.12.2006 02:28:00
- Last modified 09.04.2025 00:30:58
The if_clone_list function in NetBSD-current before 20061027, NetBSD 3.0 and 3.0.1 before 20061027, and NetBSD 2.x before 20061119 allows local users to read potentially sensitive, uninitialized stack memory via unspecified vectors.
CVE-2006-6397
- EPSS 0.15%
- Published 08.12.2006 01:28:00
- Last modified 09.04.2025 00:30:58
Integer overflow in banner/banner.c in FreeBSD, NetBSD, and OpenBSD might allow local users to modify memory via a long banner. NOTE: CVE and multiple third parties dispute this issue. Since banner is not setuid, an exploit would not cross privilege...
CVE-2006-6165
- EPSS 0.14%
- Published 29.11.2006 01:28:00
- Last modified 09.04.2025 00:30:58
ld.so in FreeBSD, NetBSD, and possibly other BSD distributions does not remove certain harmful environment variables, which allows local users to gain privileges by passing certain environment variables to loading processes. NOTE: this issue has bee...
CVE-2006-6013
- EPSS 0.08%
- Published 21.11.2006 23:07:00
- Last modified 09.04.2025 00:30:58
Integer signedness error in the fw_ioctl (FW_IOCTL) function in the FireWire (IEEE-1394) drivers (dev/firewire/fwdev.c) in various BSD kernels, including DragonFlyBSD, FreeBSD 5.5, MidnightBSD 0.1-CURRENT before 20061115, NetBSD-current before 200611...